The package includes tests and a stable release, but its documentation is extremely sparse. Its source maintenance cannot be verified because the repository could not be found, and the package has no recognized license.
38%
Total Score
60
100
The latest release was published in March 2015, with no releases in the last 12 months; this is strong evidence of abandonment risk despite the package having three historical releases.
The manifest declares “Nora,” but no license text was detected and no license file is present. This leaves the release's licensing terms unclear for adopters.
Tests are included, which is a small positive, but the README contains only 12 characters and provides almost no consumer guidance. The missing changelog is not a concern for a published artifact.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
nora-php/kvs Version >=1.1 | — | — |
nora-php/core Version >=1.1 | — | — |
nora-php/secure Version >=1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.